CLAIMS 

Please amend Claims 7, 8, 10, 1 1 , and 17 as follows: 

1 . (Original) An integrated intrusion detection method comprising: 
gathering information from a plurality of different types of intrusion detection 

sensors; 

processing said information, wherein said processing provides a consolidated 
correlation of said information; 

assigning a response corresponding to said information; and 
implementing said response. 

2. (Original) An integrated intrusion detection method of Claim 1 wherein said 
information includes intrusion detection alerts. 

3. (Original) An integrated intrusion detection method of Claim 2 further 
comprising centrally tracking information associated with intrusion detection alerts 
from said plurality of different types of intrusion detection sensors. 

4. (Original) An integrated intrusion detection method of Claim 3 wherein said 
tracking information associated with intrusion detection includes assigning severity 
assignments standardized across said plurality of different types of intrusion 
detection sensors. 

5. (Original) An integrated intrusion detection method of Claim 2 wherein said 
intrusion detection alerts are correlated based upon various alert attributes. 

6. (Original) An integrated intrusion detection method of Claim 2 wherein said 
response conforms to an enterprise wide strategy. 

7. (Currently Amended) An integrated intrusion detection method of Claim 1 
further comprising managing said intrusion detection sensors. 

8. (Currently Amended) A computer usable storage medium having computer 
readable program code embodied therein for causing a computer system to 
implement intrusion detection instructions comprising: 
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a data collection module for receiving information from a plurality of different 
types of intrusion detection sensors s e curity oxam i nation compononts , wherein said 
information indicates potential security issues; 

an integration module for integrating said information in a network application 
management platform; 

a reaction determination module for determining appropriate response to 
indication of said potential security issues; and 

a reaction direction module for directing said response. 

9. (Original) A computer usable storage medium of Claim 8 wherein said 
information includes intrusion detection system alert data. 

1 0. (Currently Amended) A computer usable storage medium of Claim 8 wherein 
said integration module selects a hook appropr i ato hooks in an intrusion detection 
system. 

1 1 . (Currently Amended) A computer usable storage medium of Claim 8 wherein 
said data collection module logs alerts from said plurality of different types of 
intrusion detection sensors security oxaminat i on compononte . 

1 2. (Original) A computer usable storage medium of Claim 8 wherein said alerts 
are provided by a simple network management protocol (SNMP), a system log and 
an application program interface. 

1 3. (Original) A computer usable storage medium of Claim 8 wherein said 
integration module includes analyzing a plurality of manners in which an alert can be 
provided and selecting the manner that is the most secure with the least 
dependencies in a communication path. 

1 4. (Original) A computer usable storage medium of Claim 8 wherein said 
integration module utilizes a network application management platform to log 
information. 

1 5. (Original) A computer usable storage medium of Claim 1 4 wherein: 

an open view operation simple network management protocol trap is utilized 
to handle simple network management protocol trap based alerts; 
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an open view operation log file encapsulator handles system log based alerts; 

and 

an open view message interceptor handles application program interface 
propagated alerts with the help of an operation message mechanism. 

1 6. (Original) A computer usable medium of Claim 1 4 wherein a secure open 
view template configuration is utilized to log information and the one message group 
is configured for handling intrusion detection system alerts and another message 
group is configured for handling intrusion detection system errors. 

1 7. (Currently Amended) An intrusion detection central system comprising: 
a bus for communicating information; 

a processor coupled to said bus, said processor for processing said 
information including instructions for coordinating security information from a 
plurality of different intrusion detection sensors s e cur i ty i ntrus i on attempt 
id e nt i ficat i on compononto ; and 

a memory coupled to said bus, said memory for storing said information, 
including instructions for coordinating security information from a plurality of different 
intrusion detection sensors s e cur i ty intrus i on att e mpt i d e nt i finnt i nn mmpnn n ntr . 

18. (Original) An intrusion detection central system of claim 1 7 wherein said 
instructions include security management instructions implemented on a network 
application management platform. 

1 9. (Original) An intrusion detection central system of claim 18 further comprising 
a central console for interfacing with said network application management platform. 

20. (Original) An intrusion detection central system of claim 1 7 wherein said 
instructions include incident reaction instructions. 
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